Home/Product/microsoft windows server
Product

microsoft windows server

307 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2022-29151
all versions
Windows Cluster Shared Volume (CSV) Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-29150
all versions
Windows Cluster Shared Volume (CSV) Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-29142
all versions
Windows Kernel Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-29141
all versions
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-29140
all versions
Windows Print Spooler Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-29139
all versions
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-29138
all versions
Windows Clustered Shared Volume Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-29137
all versions
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-29135
all versions
Windows Cluster Shared Volume (CSV) Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-29134
all versions
Windows Clustered Shared Volume Information Disclosure Vulnerability
6.5MEDIUM
CVE-2022-29132
all versions
Windows Print Spooler Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-29131
all versions
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-29130
all versions
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
9.8CRITICAL
CVE-2022-29129
all versions
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-29128
all versions
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-29127
all versions
BitLocker Security Feature Bypass Vulnerability
4.2MEDIUM
CVE-2022-29126
all versions
Tablet Windows User Interface Application Core Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-29125
all versions
Windows Push Notifications Apps Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-29123
all versions
Windows Clustered Shared Volume Information Disclosure Vulnerability
6.5MEDIUM
CVE-2022-29122
all versions
Windows Clustered Shared Volume Information Disclosure Vulnerability
6.5MEDIUM
CVE-2022-29121
all versions
Windows WLAN AutoConfig Service Denial of Service Vulnerability
6.5MEDIUM
CVE-2022-29120
all versions
Windows Clustered Shared Volume Information Disclosure Vulnerability
6.5MEDIUM
CVE-2022-29115
all versions
Windows Fax Service Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-29114
all versions
Windows Print Spooler Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-29113
all versions
Windows Digital Media Receiver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-29112
all versions
Windows Graphics Component Information Disclosure Vulnerability
6.5MEDIUM
CVE-2022-29105
all versions
Microsoft Windows Media Foundation Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-29104
all versions
Windows Print Spooler Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-29103
all versions
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-29102
all versions
Windows Failover Cluster Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-26939
all versions
Storage Spaces Direct Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-26938
all versions
Storage Spaces Direct Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-26937
all versions
Windows Network File System Remote Code Execution Vulnerability
9.8CRITICAL
CVE-2022-26936
all versions
Windows Server Service Information Disclosure Vulnerability
6.5MEDIUM
CVE-2022-26935
all versions
Windows WLAN AutoConfig Service Information Disclosure Vulnerability
6.5MEDIUM
CVE-2022-26934
all versions
Windows Graphics Component Information Disclosure Vulnerability
6.5MEDIUM
CVE-2022-26933
all versions
Windows NTFS Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-26932
all versions
Storage Spaces Direct Elevation of Privilege Vulnerability
8.2HIGH
CVE-2022-26931
all versions
Windows Kerberos Elevation of Privilege Vulnerability
7.5HIGH
CVE-2022-26930
all versions
Windows Remote Access Connection Manager Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-26927
all versions
Windows Graphics Component Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-26926
all versions
Windows Address Book Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-26913
all versions
Windows Authentication Information Disclosure Vulnerability
7.4HIGH
CVE-2022-23270
all versions
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
8.1HIGH
CVE-2022-22713
all versions
Windows Hyper-V Denial of Service Vulnerability
5.6MEDIUM
CVE-2022-22019
all versions
Remote Procedure Call Runtime Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-22016
all versions
Windows PlayToManager Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-22015
all versions
Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability
6.5MEDIUM
CVE-2022-22014
all versions
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-22013
all versions
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-22012
all versions
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
9.8CRITICAL
CVE-2022-22011
all versions
Windows Graphics Component Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-21972
all versions
Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability
8.1HIGH
CVE-2022-24537
all versions
Windows Hyper-V Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-24525
all versions
Windows Update Stack Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-24508
all versions
Win32 File Enumeration Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-24507
all versions
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-24505
all versions
Windows ALPC Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-24503
all versions
Remote Desktop Protocol Client Information Disclosure Vulnerability
5.4MEDIUM
CVE-2022-24502
all versions
Windows HTML Platforms Security Feature Bypass Vulnerability
4.3MEDIUM
CVE-2022-24460
all versions
Tablet Windows User Interface Application Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-24459
all versions
Windows Fax and Scan Service Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-24454
all versions
Windows Security Support Provider Interface Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-23299
all versions
Windows PDEV Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-23298
all versions
Windows NT OS Kernel Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-23297
all versions
Windows NT Lan Manager Datagram Receiver Driver Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-23296
all versions
Windows Installer Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-23294
all versions
Windows Event Tracing Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-23293
all versions
Windows Fast FAT File System Driver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-23291
all versions
Windows DWM Core Library Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-23290
all versions
Windows Inking COM Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-23288
all versions
Windows DWM Core Library Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-23287
all versions
Windows ALPC Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-23286
all versions
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-23285
all versions
Remote Desktop Client Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-23284
all versions
Windows Print Spooler Elevation of Privilege Vulnerability
7.2HIGH
CVE-2022-23283
all versions
Windows ALPC Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-23281
all versions
Windows Common Log File System Driver Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-23253
all versions
Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability
6.5MEDIUM
CVE-2022-22010
all versions
Media Foundation Information Disclosure Vulnerability
4.4MEDIUM
CVE-2022-21990
all versions
Remote Desktop Client Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-21977
all versions
Media Foundation Information Disclosure Vulnerability
3.3LOW
CVE-2022-21975
all versions
Windows Hyper-V Denial of Service Vulnerability
4.7MEDIUM
CVE-2022-22717
all versions
Windows Print Spooler Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-22715
all versions
Named Pipe File System Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-22712
all versions
Windows Hyper-V Denial of Service Vulnerability
5.6MEDIUM
CVE-2022-22710
all versions
Windows Common Log File System Driver Denial of Service Vulnerability
5.5MEDIUM
CVE-2022-22002
all versions
Windows User Account Profile Picture Denial of Service Vulnerability
5.5MEDIUM
CVE-2022-22001
all versions
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-22000
all versions
Windows Common Log File System Driver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21998
all versions
Windows Common Log File System Driver Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-21997
all versions
Windows Print Spooler Elevation of Privilege Vulnerability
7.1HIGH
CVE-2022-21995
all versions
Windows Hyper-V Remote Code Execution Vulnerability
7.9HIGH
CVE-2022-21994
all versions
Windows DWM Core Library Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21993
all versions
Windows Services for NFS ONCRPC XDR Driver Information Disclosure Vulnerability
7.5HIGH
CVE-2022-21992
all versions
Windows Mobile Device Management Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-21989
all versions
Windows Kernel Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21985
all versions
Windows Remote Access Connection Manager Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-21984
all versions
Windows DNS Server Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-21981
all versions
Windows Common Log File System Driver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21974
all versions
Roaming Security Rights Management Services Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-21963
all versions
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
6.4MEDIUM
CVE-2022-21962
all versions
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
6.8MEDIUM
CVE-2022-21961
all versions
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
6.8MEDIUM
CVE-2022-21960
all versions
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
6.8MEDIUM
CVE-2022-21959
all versions
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
6.8MEDIUM
CVE-2022-21958
all versions
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
6.8MEDIUM
CVE-2022-21928
all versions
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
6.3MEDIUM
CVE-2022-21924
all versions
Workstation Service Remote Protocol Security Feature Bypass Vulnerability
5.3MEDIUM
CVE-2022-21922
all versions
Remote Procedure Call Runtime Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-21921
all versions
Windows Defender Credential Guard Security Feature Bypass Vulnerability
4.4MEDIUM
CVE-2022-21920
all versions
Windows Kerberos Elevation of Privilege Vulnerability
8.8HIGH
CVE-2022-21918
all versions
DirectX Graphics Kernel File Denial of Service Vulnerability
6.5MEDIUM
CVE-2022-21916
all versions
Windows Common Log File System Driver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21915
all versions
Windows GDI+ Information Disclosure Vulnerability
6.5MEDIUM
CVE-2022-21914
all versions
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21913
all versions
Local Security Authority (Domain Policy) Remote Protocol Security Feature Bypass
5.3MEDIUM
CVE-2022-21912
all versions
DirectX Graphics Kernel Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-21910
all versions
Microsoft Cluster Port Driver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21908
all versions
Windows Installer Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21907
all versions
HTTP Protocol Stack Remote Code Execution Vulnerability
9.8CRITICAL
CVE-2022-21906
all versions
Windows Defender Application Control Security Feature Bypass Vulnerability
5.5MEDIUM
CVE-2022-21905
all versions
Windows Hyper-V Security Feature Bypass Vulnerability
4.6MEDIUM
CVE-2022-21904
all versions
Windows GDI Information Disclosure Vulnerability
7.5HIGH
CVE-2022-21903
all versions
Windows GDI Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21902
all versions
Windows DWM Core Library Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21901
all versions
Windows Hyper-V Elevation of Privilege Vulnerability
9.0CRITICAL
CVE-2022-21900
all versions
Windows Hyper-V Security Feature Bypass Vulnerability
4.6MEDIUM
CVE-2022-21898
all versions
DirectX Graphics Kernel Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-21897
all versions
Windows Common Log File System Driver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21896
all versions
Windows DWM Core Library Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21895
all versions
Windows User Profile Service Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21894
all versions
Secure Boot Security Feature Bypass Vulnerability
4.4MEDIUM
CVE-2022-21893
all versions
Remote Desktop Protocol Remote Code Execution Vulnerability
8.0HIGH
CVE-2022-21892
all versions
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
6.8MEDIUM
CVE-2022-21890
all versions
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
7.5HIGH
CVE-2022-21889
all versions
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
7.5HIGH
CVE-2022-21888
all versions
Windows Modern Execution Server Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-21885
all versions
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21884
all versions
Local Security Authority Subsystem Service Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21883
all versions
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
7.5HIGH
CVE-2022-21881
all versions
Windows Kernel Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21880
all versions
Windows GDI+ Information Disclosure Vulnerability
7.5HIGH
CVE-2022-21879
all versions
Windows Kernel Elevation of Privilege Vulnerability
5.5MEDIUM
CVE-2022-21878
all versions
Windows Geolocation Service Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-21877
all versions
Storage Spaces Controller Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-21876
all versions
Win32k Information Disclosure Vulnerability
5.5MEDIUM
CVE-2022-21875
all versions
Windows Storage Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21874
all versions
Windows Security Center API Remote Code Execution Vulnerability
7.8HIGH
CVE-2022-21873
all versions
Tile Data Repository Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21872
all versions
Windows Event Tracing Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21871
all versions
Microsoft Diagnostics Hub Standard Collector Runtime Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21870
all versions
Tablet Windows User Interface Application Core Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21869
all versions
Clipboard User Service Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21868
all versions
Windows Devices Human Interface Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21867
all versions
Windows Push Notifications Apps Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21866
all versions
Windows System Launcher Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21865
all versions
Connected Devices Platform Service Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21864
all versions
Windows UI Immersive Server API Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21863
all versions
Windows StateRepository API Server file Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21862
all versions
Windows Application Model Core API Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21861
all versions
Task Flow Data Engine Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21860
all versions
Windows AppContracts API Server Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21859
all versions
Windows Accounts Control Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21858
all versions
Windows Bind Filter Driver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21857
all versions
Active Directory Domain Services Elevation of Privilege Vulnerability
8.8HIGH
CVE-2022-21852
all versions
Windows DWM Core Library Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21851
all versions
Remote Desktop Client Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-21850
all versions
Remote Desktop Client Remote Code Execution Vulnerability
8.8HIGH
CVE-2022-21849
all versions
Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
9.8CRITICAL
CVE-2022-21848
all versions
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
7.5HIGH
CVE-2022-21847
all versions
Windows Hyper-V Denial of Service Vulnerability
6.5MEDIUM
CVE-2022-21843
all versions
Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
7.5HIGH
CVE-2022-21838
all versions
Windows Cleanup Manager Elevation of Privilege Vulnerability
5.5MEDIUM
CVE-2022-21836
all versions
Windows Certificate Spoofing Vulnerability
7.8HIGH
CVE-2022-21835
all versions
Microsoft Cryptographic Services Elevation of Privilege Vulnerability
7.8HIGH
CVE-2022-21834
all versions
Windows User-mode Driver Framework Reflector Driver Elevation of Privilege Vulnerability
7.0HIGH
CVE-2022-21833
all versions
Virtual Machine IDE Drive Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43893
all versions
Windows Encrypting File System (EFS) Elevation of Privilege Vulnerability
7.5HIGH
CVE-2021-43883
all versions
Windows Installer Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43248
all versions
Windows Digital Media Receiver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43247
all versions
Windows TCP/IP Driver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43246
all versions
Windows Hyper-V Denial of Service Vulnerability
5.6MEDIUM
CVE-2021-43244
all versions
Windows Kernel Information Disclosure Vulnerability
6.5MEDIUM
CVE-2021-43240
all versions
NTFS Set Short Name Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43239
all versions
Windows Recovery Environment Agent Elevation of Privilege Vulnerability
7.1HIGH
CVE-2021-43238
all versions
Windows Remote Access Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43237
all versions
Windows Setup Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43236
all versions
Microsoft Message Queuing Information Disclosure Vulnerability
7.5HIGH
CVE-2021-43235
all versions
Storage Spaces Controller Information Disclosure Vulnerability
5.5MEDIUM
CVE-2021-43234
all versions
Windows Fax Service Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-43233
all versions
Remote Desktop Client Remote Code Execution Vulnerability
7.5HIGH
CVE-2021-43232
all versions
Windows Event Tracing Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-43231
all versions
Windows NTFS Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43230
all versions
Windows NTFS Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43229
all versions
Windows NTFS Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43228
all versions
SymCrypt Denial of Service Vulnerability
7.5HIGH
CVE-2021-43227
all versions
Storage Spaces Controller Information Disclosure Vulnerability
5.5MEDIUM
CVE-2021-43224
all versions
Windows Common Log File System Driver Information Disclosure Vulnerability
5.5MEDIUM
CVE-2021-43223
all versions
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-43222
all versions
Microsoft Message Queuing Information Disclosure Vulnerability
7.5HIGH
CVE-2021-43219
all versions
DirectX Graphics Kernel File Denial of Service Vulnerability
7.4HIGH
CVE-2021-43217
all versions
Windows Encrypting File System (EFS) Remote Code Execution Vulnerability
8.1HIGH
CVE-2021-43216
all versions
Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability
6.5MEDIUM
CVE-2021-43215
all versions
iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution
9.8CRITICAL
CVE-2021-43207
all versions
Windows Common Log File System Driver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-42291
all versions
Active Directory Domain Services Elevation of Privilege Vulnerability
7.5HIGH
CVE-2021-42286
all versions
Windows Core Shell SI Host Extension Framework for Composable Shell Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-42285
all versions
Windows Kernel Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-42284
all versions
Windows Hyper-V Denial of Service Vulnerability
6.8MEDIUM
CVE-2021-42283
all versions
NTFS Elevation of Privilege Vulnerability
8.8HIGH
CVE-2021-42282
all versions
Active Directory Domain Services Elevation of Privilege Vulnerability
7.5HIGH
CVE-2021-40465
all versions
Windows Text Shaping Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-40464
all versions
Windows Nearby Sharing Elevation of Privilege Vulnerability
8.0HIGH
CVE-2021-40462
all versions
Windows Media Foundation Dolby Digital Atmos Decoders Remote Code Execution Vulnerability
7.8HIGH
CVE-2021-40461
all versions
Windows Hyper-V Remote Code Execution Vulnerability
8.0HIGH
CVE-2021-40460
all versions
Windows Remote Procedure Call Runtime Security Feature Bypass Vulnerability
6.5MEDIUM
CVE-2021-40456
all versions
Windows AD FS Security Feature Bypass Vulnerability
5.3MEDIUM
CVE-2021-40455
all versions
Windows Installer Spoofing Vulnerability
5.5MEDIUM
CVE-2021-40454
all versions
Rich Text Edit Control Information Disclosure Vulnerability
5.5MEDIUM
CVE-2021-40443
all versions
Windows Common Log File System Driver Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-38663
all versions
Windows exFAT File System Information Disclosure Vulnerability
5.5MEDIUM
CVE-2021-38662
all versions
Windows Fast FAT File System Driver Information Disclosure Vulnerability
5.5MEDIUM
CVE-2021-36970
all versions
Windows Print Spooler Spoofing Vulnerability
8.8HIGH
CVE-2021-36953
all versions
Windows TCP/IP Denial of Service Vulnerability
7.5HIGH
CVE-2021-26441
all versions
Storage Spaces Controller Elevation of Privilege Vulnerability
7.8HIGH
CVE-2021-26414
all versions
Windows DCOM Server Security Feature Bypass
4.8MEDIUM
CVE-2020-1082
all versions
An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files, aka 'Windows
7.8HIGH
CVE-2020-13110
< 1.0.0
The kerberos package before 1.0.0 for Node.js allows arbitrary code execution and privilege escalation via injection of malicious
7.8HIGH
CVE-2018-20217
< 5-1.17
A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt
5.3MEDIUM
CVE-2018-8554
all versions
An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Elevation of Privil
7.8HIGH
CVE-2018-8445
all versions
An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka "Windows Kernel I
5.5MEDIUM
CVE-2018-8438
all versions
A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input f
6.8MEDIUM
CVE-2018-8422
all versions
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka
6.5MEDIUM
CVE-2018-8420
all versions
A remote code execution vulnerability exists when the Microsoft XML Core Services MSXML parser processes user input, aka "MS XML R
8.8HIGH
CVE-2018-8419
all versions
An information disclosure vulnerability exists when the Windows kernel fails to properly initialize a memory address, aka "Windows
5.5MEDIUM
CVE-2018-8410
all versions
An elevation of privilege vulnerability exists when the Windows Kernel API improperly handles registry objects in memory, aka "Win
7.8HIGH
CVE-2018-8335
all versions
A denial of service vulnerability exists in the Microsoft Server Block Message (SMB) when an attacker sends specially crafted requ
7.5HIGH
CVE-2018-8332
all versions
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, ak
8.8HIGH
CVE-2018-8399
all versions
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, ak
7.0HIGH
CVE-2018-8350
all versions
A remote code execution vulnerability exists when Microsoft Windows PDF Library improperly handles objects in memory, aka "Windows
8.8HIGH
CVE-2018-0926
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
5.5MEDIUM
CVE-2018-0904
all versions
The Windows kernel in Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Win
4.7MEDIUM
CVE-2018-0902
all versions
The Cryptography Next Generation (CNG) kernel-mode driver (cng.sys) in Windows 10 Gold, 1511, 1607, 1703, and 1709. Windows Server
7.8HIGH
CVE-2018-0901
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
4.7MEDIUM
CVE-2018-0900
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
4.7MEDIUM
CVE-2018-0899
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
4.7MEDIUM
CVE-2018-0898
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
4.7MEDIUM
CVE-2018-0897
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
4.7MEDIUM
CVE-2018-0896
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
4.7MEDIUM
CVE-2018-0895
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
4.7MEDIUM
CVE-2018-0894
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
4.7MEDIUM
CVE-2018-0888
all versions
The Microsoft Hyper-V Network Switch in 64-bit versions of Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.
5.6MEDIUM
CVE-2018-0885
all versions
The Microsoft Hyper-V Network Switch in 64-bit versions of Microsoft Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R
5.8MEDIUM
CVE-2018-0884
all versions
Windows Scripting Host (WSH) in Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 a
7.8HIGH
CVE-2018-0883
all versions
Windows Shell in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2,
7.5HIGH
CVE-2018-0882
all versions
The Desktop Bridge in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of
7.0HIGH
CVE-2018-0881
all versions
The Microsoft Video Control in Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 an
7.0HIGH
CVE-2018-0880
all versions
The Desktop Bridge in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of
7.0HIGH
CVE-2018-0877
all versions
The Desktop Bridge Virtual File System (VFS) in Windows 10 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1
7.8HIGH
CVE-2018-0814
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
5.5MEDIUM
CVE-2018-0813
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
5.5MEDIUM
CVE-2018-0811
all versions
The Windows kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
5.5MEDIUM
CVE-2018-0825
all versions
StructuredQuery in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows
7.5HIGH
CVE-2018-0757
all versions
The Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windo
4.7MEDIUM
CVE-2018-5710
<= 5-1.16
An issue was discovered in MIT Kerberos 5 (aka krb5) through 1.16. The pre-defined function "strlen" is getting a "NULL" string as
6.5MEDIUM
CVE-2018-5709
<= 5-1.16
An issue was discovered in MIT Kerberos 5 (aka krb5) through 1.16. There is a variable "dbentry-n_key_data" in kadmin/dbutil/dump.
7.5HIGH
CVE-2017-11927
all versions
Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607
6.5MEDIUM
CVE-2017-11851
all versions
The Windows kernel component on Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and
4.7MEDIUM
CVE-2017-11850
all versions
Microsoft Graphics Component in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, W
2.5LOW
CVE-2017-11842
all versions
Windows kernel in Windows 8.1 and RT 8.1, Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, an
4.7MEDIUM
CVE-2017-11831
all versions
Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 1
4.7MEDIUM
CVE-2017-11830
all versions
Device Guard in Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709 allows an attac
5.3MEDIUM
CVE-2017-11788
all versions
Windows Search in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 1
7.5HIGH
CVE-2017-11368
all versions
In MIT Kerberos 5 (aka krb5) 1.7 and later, an authenticated attacker can cause a KDC assertion failure by sending invalid S4U2Sel
6.5MEDIUM
CVE-2014-5354
all versions
plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in MIT Kerberos 5 (aka krb5) 1.12.x and 1.13.x before 1.13.1, when the KDC uses LDA
CVE-2014-4342
all versions
MIT Kerberos 5 (aka krb5) 1.7.x through 1.12.x before 1.12.2 allows remote attackers to cause a denial of service (buffer over-rea
CVE-2013-6800
all versions
An unspecified third-party database module for the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.10.x allows remote
CVE-2011-0282
all versions
The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.6.x through 1.9, when an LDAP backend is used, allows remote atta
CVE-2011-0281
all versions
The unparse implementation in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.6.x through 1.9, when an LDAP backe
CVE-2010-1323
all versions
MIT Kerberos 5 (aka krb5) 1.3.x, 1.4.x, 1.5.x, 1.6.x, 1.7.x, and 1.8.x through 1.8.3 does not properly determine the acceptability
3.7LOW
CVE-2010-0283
all versions
The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 before 1.7.2, and 1.8 alpha, allows remote attackers to cause a
CVE-2009-4212
all versions
Multiple integer underflows in the (1) AES and (2) RC4 decryption functionality in the crypto library in MIT Kerberos 5 (aka krb5)
CVE-2009-1133
all versions
Heap-based buffer overflow in Microsoft Remote Desktop Connection (formerly Terminal Services Client) running RDP 5.0 through 6.1
CVE-2009-0568
all versions
The RPC Marshalling Engine (aka NDR) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and
CVE-2009-0230
all versions
The Windows Print Spooler in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 200
CVE-2009-0847
all versions
The asn1buf_imbed function in the ASN.1 decoder in MIT Kerberos 5 (aka krb5) 1.6.3, when PK-INIT is used, allows remote attackers
CVE-2009-0844
all versions
The get_input_token function in the SPNEGO implementation in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote attackers t
CVE-2009-0845
all versions
The spnego_gss_accept_sec_context function in lib/gssapi/spnego/spnego_mech.c in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3, when
CVE-2004-0523
all versions
Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute
CVE-2003-0082
all versions
The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial
CVE-2003-0072
all versions
The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial
CVE-2003-0139
all versions
Certain weaknesses in the implementation of version 4 of the Kerberos protocol (krb4) in the krb5 distribution, when triple-DES ke
CVE-2003-0138
all versions
Version 4 of the Kerberos protocol (krb4), as used in Heimdal and other packages, allows an attacker to impersonate any principal
CVE-2001-0554
all versions
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary comma
CVE-2001-0417
all versions
Kerberos 4 (aka krb4) allows local users to overwrite arbitrary files via a symlink attack on new ticket files.
CVE-2000-0550
all versions
Kerberos 4 KDC program improperly frees memory twice (aka "double-free"), which allows remote attackers to cause a denial of servi
CVE-2000-0549
all versions
Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attacker
CVE-2000-0548
< 4.0
Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the e_msg variable in the kerb_
CVE-2000-0547
< 4.0
Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the localrealm variable in the
CVE-2000-0546
< 4.0
Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the lastrealm variable in the s
CVE-2000-0392
all versions
Buffer overflow in ksu in Kerberos 5 allows local users to gain root privileges.
CVE-2000-0391
all versions
Buffer overflow in krshd in Kerberos 5 allows remote attackers to gain root privileges.
CVE-2000-0390
all versions
Buffer overflow in krb425_conv_principal function in Kerberos 5 allows remote attackers to gain root privileges.
CVE-2000-0389
all versions
Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges.
CVE-1999-1321
all versions
Buffer overflow in ssh 1.2.26 client with Kerberos V enabled could allow remote attackers to cause a denial of service or execute
CVE-1999-0143
all versions
Kerberos 4 key servers allow a user to masquerade as another by breaking and generating session keys.
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin